← Back

CVE-2024-0387

nvd nist
Published: Feb 26, 2024Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Exploitability: 3.9 / Impact: 2.5
Source: NVD

Description

The EDS-4000/G4000 Series prior to version 3.2 includes IP forwarding capabilities that users cannot deactivate. An attacker may be able to send requests to the product and have it forwarded to the target. An attacker can bypass access controls or hide the source of malicious requests.

Affected (7)

7 products
Eds 4008 Firmware
Eds 4009 Firmware
Eds 4012 Firmware
Eds 4014 Firmware
Eds G4008 Firmware
Eds G4012 Firmware
Eds G4014 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 3.2
Running on/withPlatform Versions
Moxa
Eds 4008
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 3.2
Running on/withPlatform Versions
Moxa
Eds 4009
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 3.2
Running on/withPlatform Versions
Moxa
Eds 4012
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 3.2
Running on/withPlatform Versions
Moxa
Eds 4014
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 3.2
Running on/withPlatform Versions
Moxa
Eds G4008
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 3.2
Running on/withPlatform Versions
Moxa
Eds G4012
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 3.2
Running on/withPlatform Versions
Moxa
Eds G4014
All versions

Timeline

No history available yet.